CVE-2020-29371 PUBLISHED

An issue was discovered in romfs_dev_read in fs/romfs/storage.c in the Linux kernel before 5.8.4. Uninitialized memory leaks to userspace, aka CID-bcf85fcedfdd.

EPSS 0.05% · 15.9th percentile

Risk Scores

EPSS Score
0.05%
15.9th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSlinux-hwe5.3.0-26.28~18.04.1, 5.0.0-37.40~18.04.1, 5.3.0-28.30~18.04.1
Ubuntu:Pro:FIPS:18.04:LTSlinux-aws-fips0, 4.15.0-2000.4
Ubuntu:20.04:LTSlinux-oracle5.4.0-1022.22, 5.4.0-1025.25, 5.4.0-1024.24
Ubuntu:20.04:LTSlinux-raspi5.4.0-1019.21, 5.4.0-1016.17, 5.4.0-1015.15
Ubuntu:Pro:FIPS-updates:18.04:LTSlinux-fips4.15.0-1029.34, 4.15.0-1038.43, 4.15.0-1037.42
Ubuntu:18.04:LTSlinux-gcp-4.154.15.0-1077.87, 4.15.0-1071.81, 4.15.0-1078.88
Ubuntu:18.04:LTSlinux-azure-edge4.18.0-1008.8~18.04.1, 4.18.0-1006.6~18.04.1, 0
Ubuntu:Pro:14.04:LTSlinux3.13.0-162.212, 0, 3.11.0-12.19
Ubuntu:20.04:LTSlinux-raspi20, 5.3.0-1007.8, 5.3.0-1014.16
Ubuntu:18.04:LTSlinux-azure-5.40, 5.4.0-1020.20~18.04.1, 5.4.0-1022.22~18.04.1
Ubuntu:20.04:LTSlinux-gcp5.4.0-1011.11, 5.4.0-1018.18, 5.4.0-1019.19
Ubuntu:Pro:FIPS:18.04:LTSlinux-gcp-fips4.15.0-1001.1, 0
Ubuntu:Pro:FIPS:18.04:LTSlinux-azure-fips4.15.0-1002.2, 0
Ubuntu:18.04:LTSlinux-gcp-edge4.18.0-1006.7~18.04.1, 5.0.0-1013.13~18.04.1, 4.18.0-1005.6~18.04.1
Ubuntu:18.04:LTSlinux-gcp5.0.0-1026.27~18.04.1, 5.0.0-1029.30~18.04.1, 5.0.0-1031.32
Ubuntu:16.04:LTSlinux4.4.0-70.91, 4.4.0-71.92, 4.4.0-72.93
Ubuntu:Pro:14.04:LTSlinux-azure4.15.0-1046.50~14.04.1, 0, 4.15.0-1023.24~14.04.1
Ubuntu:16.04:LTSlinux-oracle4.15.0-1050.54~16.04.1, 4.15.0-1046.50~16.04.1, 4.15.0-1011.13~16.04.1
Ubuntu:Pro:FIPS:16.04:LTSlinux-fips4.4.0-1005.5, 4.4.0-1023.28, 4.4.0-1025.30
Ubuntu:18.04:LTSlinux-hwe-5.40, 5.4.0-37.41~18.04.1, 5.4.0-40.44~18.04.1

…and 52 more

Timeline

References

Open in Interactive Console →